An open index of dependabot pull requests across open source projects.

Bump gitpython from 3.1.47 to 3.1.49

Closed
Number: #596
Type: Pull Request
State: Closed
Author: dependabot[bot] dependabot[bot]
Association: Unknown
Comments: 2
Created: April 30, 2026 at 04:53 AM UTC
(about 1 month ago)
Updated: April 30, 2026 at 04:54 AM UTC
(about 1 month ago)
Closed: April 30, 2026 at 04:54 AM UTC
(about 1 month ago)
Time to Close: 1 minute
Labels:
dependencies python
Description:

Bumps gitpython from 3.1.47 to 3.1.49.

Release notes

Sourced from gitpython's releases.

3.1.48

Fixes gitpython-developers/GitPython#2134

What's Changed

Full Changelog: https://github.com/gitpython-developers/GitPython/compare/3.1.47...3.1.48

Commits
  • aee2fd5 bump version to 3.1.49
  • 1c4ea96 Merge pull request #2136 from gitpython-developers/copilot/create-reproducing...
  • 6cf7ac3 Address rev-parse review feedback
  • b049a13 Merge pull request #2137 from gitpython-developers/fix-config-injection
  • bdbdf4b Fix rev-parse CI issues
  • d7ce6fc Improve pure Python rev-parse coverage and behavior (#2135)
  • 8e24503 avoid duplicate validation in set_value
  • c417af4 reject control chars in written values in configuration
  • 5a15361 a new release with safer reference creation
  • dbfa264 Merge pull request #2134 from gitpython-developers/validate-ref-creation
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Package Dependencies
Package:
gitpython
Ecosystem:
pip
Version Change:
3.1.47 → 3.1.49
Update Type:
Patch
Technical Details
ID: 15572397
UUID: 4355392213
Node ID: PR_kwDODxBb0s7W9f-0
Host: GitHub
Repository: NHSDigital/api-management-utils